ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 53 - SPLK-5001 discussion

Report
Export

Which of the following is a correct Splunk search that will return results in the most performant way?

A.
index=foo host=i-478619733 | stats range(_time) as duration by src_ip | bin duration span=5min | stats count by duration, host
Answers
A.
index=foo host=i-478619733 | stats range(_time) as duration by src_ip | bin duration span=5min | stats count by duration, host
B.
| stats range(_time) as duration by src_ip | index=foo host=i-478619733 | bin duration span=5min | stats count by duration, host
Answers
B.
| stats range(_time) as duration by src_ip | index=foo host=i-478619733 | bin duration span=5min | stats count by duration, host
C.
index=foo host=i-478619733 | transaction src_ip |stats count by host
Answers
C.
index=foo host=i-478619733 | transaction src_ip |stats count by host
D.
index=foo | transaction src_ip |stats count by host | search host=i-478619733
Answers
D.
index=foo | transaction src_ip |stats count by host | search host=i-478619733
Suggested answer: A
asked 23/09/2024
cristian vargas
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first